CVE-2023-47359: Videolan Vlc Media Player

Critical severity, CVSS 9.8. EPSS: 1.1% chance of exploitation in the next 30 days.

Videolan VLC prior to version 3.0.20 contains an incorrect offset read that leads to a Heap-Based Buffer Overflow in function GetPacket() and results in a memory corruption.

Affected products

  • Videolan Vlc Media Player: before 3.0.20 (fixed in 3.0.20)

Published 2023-11-07. Last modified 2026-06-17.